Show filters
28 Total Results
Displaying 21-28 of 28
Sort by:
Attacker Value
Unknown
CVE-2017-11478
Disclosure Date: July 20, 2017 (last updated November 26, 2024)
The ReadOneDJVUImage function in coders/djvu.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed DJVU image.
0
Attacker Value
Unknown
CVE-2017-5508
Disclosure Date: March 24, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the PushQuantumPixel function in ImageMagick before 6.9.7-3 and 7.x before 7.0.4-3 allows remote attackers to cause a denial of service (application crash) via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2017-5507
Disclosure Date: March 24, 2017 (last updated November 26, 2024)
Memory leak in coders/mpc.c in ImageMagick before 6.9.7-4 and 7.x before 7.0.4-4 allows remote attackers to cause a denial of service (memory consumption) via vectors involving a pixel cache.
0
Attacker Value
Unknown
CVE-2015-8894
Disclosure Date: March 15, 2017 (last updated November 26, 2024)
Double free vulnerability in coders/tga.c in ImageMagick 7.0.0 and later allows remote attackers to cause a denial of service (application crash) via a crafted tga file.
0
Attacker Value
Unknown
CVE-2015-8895
Disclosure Date: March 15, 2017 (last updated November 26, 2024)
Integer overflow in coders/icon.c in ImageMagick 6.9.1-3 and later allows remote attackers to cause a denial of service (application crash) via a crafted length value, which triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2016-9298
Disclosure Date: January 27, 2017 (last updated November 25, 2024)
Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to cause a denial of service (crash) via a crafted image.
0
Attacker Value
Unknown
CVE-2016-6491
Disclosure Date: December 13, 2016 (last updated November 25, 2024)
Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers to cause a denial of service (out-of-bounds read, memory leak, and crash) via a crafted image.
0
Attacker Value
Unknown
CVE-2016-3714
Disclosure Date: May 05, 2016 (last updated September 11, 2024)
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
0